Threat Actors Flashcards
Section 3
An individual or entity responsible for incidents that impact security and data protection.
Threat Actor
Specific characteristics or properties that define and differentiate various threat actors from one another
Threat Actor Attributes
Individuals with limited technical expertise who use readily available tools like downloaded scripts or exploits to carry out attacks
Unskilled Attackers
Cyber attackers who carry out their activities driven by political, social, or environmental ideologies who often want to draw attention to a specific cause
Hacktivists
Well-structured groups that execute cyberattacks for financial gain, usually through methods like ransomware, identity theft, or credit card fraud
Organized Crime
Highly skilled attackers that are sponsored by governments to carry out cyber espionage, sabotage, or cyber warfare against other nation states or specific targets in a variety of industries.
Nation-state Actors
Security threats that originate from within the organization
Insider Threats
IT systems, devices, software, applications, and services that are managed and utilized without explicit organizational approval
Shadow IT
Decoy systems or servers designed to attract and deceive potential attackers, simulating real-world IT assets to study their techniques
Honeypots
Creates an entire network of decoy systems to observe complex, multi-stage attacks
Honeynets
Decoy files placed within systems to detect unauthorized access or data breaches
Honeyfiles
Fake pieces of data, like a fabricated user credential, inserted into databases or systems to alert administrators when they are accessed or used.
Honeytokens
What threat actor motivation is the unauthorized transfer of data from a computer
Data Exfiltration
What threat actor motivation is one of the most common motivation for cybercriminals
Financial Gain
What threat actor motivation is where the attacker obtains sensitive or compromising information about an individual or an organization and threatens to release this information to the public unless certain demands are met
Blackmail